Winter 2026

Security Consultant Intern

Updated on 9/9/2026

CloudSEK

CloudSEK

201-500 employees

Cyber risk intelligence & monitoring platform

No salary listed

Bengaluru, Karnataka, India

In Person

Bachelor's

Category
Cybersecurity (1)
Required Skills
Market Research
Cybersecurity
REST APIs

Get referred to CloudSEK

See people who can refer or advise you

Requirements
  • Strong interest in cybersecurity, threat intelligence, or security research.
  • Working knowledge of vulnerability assessment and penetration testing methodology across at least two of web, application programming interface, mobile, and cloud environments.
  • Familiarity with CVEs, IOCs, TTPs, exposed credentials, attack surface management, OSINT, and HUMINT.
  • Ability to read technical documentation, including APIs, specifications, and security reports, and clearly explain its meaning.
  • Strong written and verbal communication skills, including the ability to present findings on live prospect or client calls.
  • Currently pursuing or recently completed a degree in Computer Science, Information Security, or a related field.
Responsibilities
  • Perform vulnerability assessment and penetration testing across web, application programming interface, mobile, and cloud environments; triage findings surfaced by BeVigil and SVigil and turn them into prioritized issues.
  • Feed vulnerability assessment, penetration testing, and triage experience back into the product by identifying gaps, false positives, and missed detection classes.
  • Track the threat landscape across the Americas and monitor underground and dark web feeds for relevant chatter, leaks, and actor activity.
  • Conduct HUMINT and OSINT collection, infrastructure hunting, and command-and-control mapping, and map intelligence to prospects, customers, or lead-generation opportunities.
  • Build or use automation, scripts, and workflows to reduce redundant manual steps in research, triage, and reporting.
  • Research exposed credentials, misconfigurations, leaked assets, and attack surface findings across client and prospect footprints; validate findings and assess their impact.
  • Help build client-facing deliverables, including trial summaries, responsible disclosure reports, and CISO-ready security impact summaries.
  • Communicate findings directly on calls with prospects and clients, translating technical details into business impact.
  • Assist with competitive and market research on the threat intelligence and cybersecurity vendor landscape.
  • Contribute to product strategy discussions about new detection use cases and roadmap prioritization.
Desired Qualifications
  • Prior capture-the-flag, bug bounty, or independent security research experience.
  • Experience with dark web or underground forum monitoring, command-and-control infrastructure mapping, or threat actor tracking.
  • Exposure to digital risk protection or supply chain risk concepts.
  • Interest in how security products are positioned and sold.

CloudSEK combines Cyber Intelligence, Brand Monitoring, Attack Surface Monitoring, Infrastructure Monitoring and Supply Chain Intelligence to map and contextualize an organization's digital risks. It collects data from the deep and dark web, brand assets, data leaks, attack vectors, and software supply chain to surface threats. Users receive alerts and context to detect and respond before damage occurs. Its platform differentiates itself by offering an integrated view across multiple domains, including coverage of fake assets and shadow vendors, in a single tool.

Company Size

201-500

Company Stage

Late Stage VC

Total Funding

$36M

Headquarters

London, United Kingdom

Founded

2015

Get referred to CloudSEK

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • August 2026 LiteLLM research put CloudSEK in front of 2,500+ exposed companies.
  • July 9, 2026 Tech Mahindra partnership expands distribution through a global services giant.
  • June 2026 Brazil InCloud partnership opens Latin American managed-security channels.

What critics are saying

  • May 11, 2026 Gartner miss exposed brittle internal process control during enterprise buying cycles.
  • A major incident response failure would erase trust in CloudSEK's predictive-intelligence brand.
  • If commoditized breach-intelligence rivals undercut pricing, CloudSEK's $15M ARR expansion stalls.

What makes CloudSEK unique

  • CloudSEK fuses dark web, attack-surface, AI, and supply-chain monitoring into one platform.
  • Its Nexus AI and XVigil bundle predictive attack-path intelligence, not alerts alone.
  • ISO/IEC 42001:2023 certification signals rare AI-governance discipline in cybersecurity.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Flexible Work Hours

Food, unlimited snacks and drinks are all available while at office.

Flexible working hours

Growth & Insights and Company News

Headcount

6 month growth

-2%

1 year growth

0%

2 year growth

-1%
Red Sky Alliance
Aug 26th, 2026
LiteLLM breach exposed 434,000 pipelines inside 40 minutes.

LiteLLM breach exposed 434,000 pipelines inside 40 minutes. Posted by Jim McKee on August 26, 2026 at 12:00pm A cybersecurity analysis by CloudSEK revealed the scale of the March 2026 LiteLLM supply-chain attack, which exposed about 434,000 CI/CD pipelines at more than 2,500 companies worldwide. Continuous Integration (CI) and Continuous Delivery (CD) pipelines are automated workflows that build, test, and deploy software from a developer's environment to production users. Although the malicious packages were active for only about 40 minutes, the breach may have exposed critical credentials and security tokens across numerous major organizations.[1] CloudSEK's investigation has identified high-confidence exposure matches associated with prominent global corporations. The affected organizations include technology giants NVIDIA, Samsung, and Cisco; industrial leader Siemens; professional services firm Deloitte; telecommunications provider Vodafone; social media platform X; cybersecurity company Zscaler; and financial information provider S&P Global, among many others. The breadth of the victim list demonstrates how supply-chain vulnerabilities can rapidly cascade across diverse industries and sectors, affecting companies regardless of their size or security sophistication. Compromised environments potentially exposed multiple categories of sensitive information critical to modern cloud-based operations. These include cloud credentials for major providers, source-code access permissions, Kubernetes tokens used for container orchestration, CI/CD secrets that automate software deployment, and LLM/API keys that enable access to artificial intelligence services and other application programming interfaces. Each category of exposed credentials represents a different avenue for exploitation, from unauthorized access to proprietary source code to hijacking cloud infrastructure resources. Security experts have emphasized that the brief 40-minute window during which the malicious packages were active does not reflect the true duration of the threat. The larger concern centers on the longevity of stolen credentials, which can remain functional even after the compromised package has been identified and removed from systems. This creates the possibility of follow-on attacks occurring well beyond the original incident. Attackers who harvested credentials during the brief exposure window may retain access to affected systems indefinitely unless organizations identify and rotate all potentially compromised secrets. The incident highlights the inherent vulnerabilities in modern software supply chains, where a single compromised dependency can affect thousands of downstream users within minutes. The attack targeted LiteLLM, a tool commonly used in AI and machine learning workflows, demonstrating how attackers increasingly focus on widely adopted open-source components to maximize their impact. CI/CD pipelines, which automate the building, testing, and deployment of software, represent particularly attractive targets because they typically require broad access to credentials and infrastructure to function. A CloudSEK spokesperson commented, "The significance of the LiteLLM incident is not just the compromise itself, but the scale of potential downstream exposure. CloudSEK's analysis identified more than 2,500 organizations and around 434,000 CI/CD pipelines that may have been exposed, including access to cloud credentials, repository tokens, Kubernetes secrets and AI provider keys." "The key risk is that removing the malicious package does not automatically invalidate credentials that may already have been copied; those credentials can remain usable and potentially be reused long after the original incident." "This incident is also a broader warning for enterprises adopting AI at speed. AI gateways and related infrastructure increasingly sit at the intersection of cloud systems, source code, sensitive data and automated workflows, making them a high-value target for supply-chain attacks. Organizations need continuous visibility into their AI assets, dependencies and credentials, rather than treating AI security as a standalone application issue," they concluded. CloudSEK has made available a free exposure checker tool to help organizations determine whether their systems were affected by the breach. The tool lets companies assess potential exposure without extensive manual investigation of dependency chains and deployment histories. Security researchers recommend that all organizations using LiteLLM during the March 2026 timeframe conduct thorough audits of their credential usage and implement comprehensive rotation of potentially affected secrets, regardless of whether immediate compromise is detected. Interested in protecting your own supply chain from cyber threats? Please visit https://www.redskyalliance.com/redxray This article is shared at no charge for educational and informational purposes only. Red Sky Alliance is a Cyber Threat Analysis and Intelligence Service organization. Red Sky Alliance provide indicators of compromise information (CTI) via a notification/Tier I analysis service (RedXray) or an analysis service (CTAC). For questions, comments, or assistance, please contact the office directly at 1-844-492-7225 or [email protected] Weekly Cyber Intelligence Briefings: REDSHORTS - Weekly Cyber Intelligence Briefings https://attendee.gotowebinar.com/register/7855487668891299929 E-mail me when people leave their comments -

Entrepreneur India
Jul 28th, 2026
Inflexor Ventures announces first close of INR 1,250 cr Fund III.

Inflexor Ventures announces first close of INR 1,250 cr Fund III. Inflexor Ventures achieves ₹400 crore first close of its ₹1,250 crore Fund III to back deep-tech startups at Series A. Venture Capital firm Inflexor Ventures has announced the first close of its INR 1,250 crore Fund III securing commitments worth INR 400 crore. The Fund is anchored by the Self-Reliant India (SRI) Fund, HDFC Asset Management Company (HDFC AMC) and HDFC AMC Select AIF FoF (HDFC FoF) and has also seen participation from leading international institutions. The new fund will continue Inflexor's investment strategy of backing founders building science, engineering and technology-led businesses across sectors. It will primarily invest in pre-Series A and Series A startups, with initial investments ranging between INR 15 crore and INR 45 crore and is expected to build a portfolio of 22-25 companies. Building on the firm's earlier funds launched in 2016 and 2021, Fund III will place greater emphasis on Series A investments, reflecting the increasing number of Indian startups achieving early product-market fit and demonstrating global growth potential. The fund will continue to follow Inflexor's sector-agnostic approach while focusing on technology-driven businesses with high barriers to entry and long-term scalability. Commenting on the development, Venkat Vallabhaneni, Founder and Managing Director of Inflexor Ventures, said, "India's innovation ecosystem has reached an inflection point. We're seeing a growing pipeline of globally ambitious companies built on differentiated science, engineering and technology, creating a compelling opportunity to partner with founders earlier in their scaling journey. Fund III reflects our conviction in this opportunity and our commitment to being long-term partners to exceptional founders." Following the first close, the firm has started deploying capital and expects to announce its first investments from Fund III in the coming weeks. Over the past decade, Inflexor Ventures has invested in more than 25 technology companies, including Atomberg, Bellatrix Aerospace, CloudSEK, CredFlow, Kale Logistics and PlayShifu. Submit your email address to receive the latest updates on news & host of opportunities

CloudSEK
Jun 16th, 2026
CloudSEK and InCloud Partner to Expand AI-Native Cyber Intelligence in Brazil.

CloudSEK and InCloud Partner to Expand AI-Native Cyber Intelligence in Brazil. São Paulo - CloudSEK, an AI-native predictive cyber intelligence platform, has announced a strategic partnership with InCloud, a Brazilian managed security services provider, to expand access to predictive threat intelligence and digital risk protection across Brazil. CloudSEK helps security teams identify attack paths and initial access vectors before they are exploited by continuously analysing external threats, the external attack surface, AI systems, and third-party ecosystems. Under this partnership, InCloud will deliver CloudSEK's platform capabilities, including XVigil, CloudSEK Threat Intelligence, BeVigil, AIVigil, SVigil, and Nexus AI, to enterprises across Brazil, combining CloudSEK's predictive attack path intelligence with InCloud's regional expertise and managed security services. Addressing Brazil's escalating cyber risk landscape. Brazil's expanding digital economy has increased enterprise exposure to financially motivated attacks, digital fraud, and large-scale cyber exploitation. Rapid digitisation, widespread adoption of real-time payment systems such as Pix, and a growing online consumer base have made organisations across the region more exposed to external cyber risks. Enterprises across the region are increasingly exposed to: * Financial fraud * Brand impersonation * Ransomware attacks * Large-scale data leaks * Third-party and supply chain risks At the same time, AI-driven attack techniques are accelerating the speed, scale, and sophistication of cyber threats, making traditional reactive security approaches increasingly ineffective. Bridging the intelligence gap with predictive security. Despite widespread adoption of security tools, many organisations still lack the ability to identify initial access vectors and anticipate attack paths before exploitation. This creates a critical gap between threat visibility and security action. The CloudSEK-InCloud partnership directly addresses this gap by combining: * CloudSEK's AI-native predictive cyber intelligence platform, built to identify initial access vectors and predict attack paths before execution * InCloud's regional expertise and managed security capabilities Together, the partnership enables: * Intelligence-led monitoring across external threats, digital assets, AI systems, and third-party ecosystems * Early detection of emerging threats and attack chains * Actionable intelligence for faster, informed decision-making * Proactive mitigation of risks across external digital assets The collaboration will initially focus on high-risk sectors including BFSI, retail, and healthcare, where cyber incidents can have immediate operational, reputational, and financial impact. Strengthening security in a rapidly growing market. Brazil's cybersecurity landscape is evolving rapidly, driven by increasing regulatory focus, rising digital fraud, and the need for enterprise-grade visibility into cyber risks at the executive level. Headquartered in São Paulo, InCloud will deliver CloudSEK's solutions as part of its managed security services portfolio, enabling organisations to move from reactive incident response to predictive attack disruption. Leadership perspective. "Our partnership with InCloud is a cornerstone of CloudSEK's global expansion strategy. Brazil is a sophisticated and highly targeted digital economy. By combining CloudSEK's AI-native predictive cyber intelligence with InCloud's deep local expertise, we aim to help enterprises identify attack paths earlier, prioritise risk better, and disrupt attack chains before execution," said Rogério Rodrigues, Vice President - Sales LATAM, CloudSEK. "Partnering with CloudSEK marks a pivotal milestone for inCloud. By combining our deep local cloud expertise with their world-class threat intelligence, we are revolutionizing cybersecurity in Brazil. Together, we will deliver unprecedented digital risk protection, empowering Brazilian enterprises to innovate boldly, scale securely, and stay ahead of emerging cyber threats," said Marcelo Shumiski, Diretor Comercial, InCloud. Strengthening CloudSEK's global expansion strategy. This partnership marks a significant step in CloudSEK's broader international growth strategy, reinforcing its commitment to bringing predictive, AI-driven cybersecurity to high-risk, high-growth markets. By enabling enterprises to move from reactive defence to proactive threat anticipation, CloudSEK continues to help organisations strengthen cyber resilience in an increasingly complex threat landscape. About CloudSEK. CloudSEK is an AI-native predictive cyber intelligence platform that identifies attack paths and initial access vectors before they are exploited. CloudSEK combines digital risk protection, cyber threat intelligence, external attack surface monitoring, AI attack surface monitoring, and third-party risk management under a single AI-native layer powered by Nexus AI. The platform helps organisations move from reactive incident response to predictive attack disruption by correlating dark web signals, threat actor activity, exposed assets, AI risks, and supply chain vulnerabilities into actionable attack path intelligence. About InCloud Tecnologia. InCloud Tecnologia focuses on innovative digital and cloud solutions, inCloud delivers high-performance technology services that guarantee data integrity, scalability, high availability, and cost-efficiency. Since 2010, InCloud has been recognized for driving exponential results through exceptional customer experiences. Their team of certified experts is equipped to solve complex technological challenges with customized strategies tailored to customers' businesses. Cybersecurity is at the core of what they do. They combine industry-leading practices with top-tier security partners, utilizing robust systems and proactive strategies to ensure real-time threat mitigation and data protection. CloudSEK Announcements June 16, 2026

Startup by Doc
Apr 30th, 2026
CloudSEK crosses $15M ARR as Exfinity scores 13x returns on partial exit

Exfinity Venture Partners has announced a partial exit from CloudSEK, achieving a 13x multiple on invested capital and an internal rate of return exceeding 40%. The transaction was executed as a secondary sale to existing investors, whilst Exfinity retains a meaningful stake in the cybersecurity company. Exfinity was CloudSEK's first institutional investor, backing the startup during its pre-Series A stage. CloudSEK has since developed into an AI-driven threat intelligence platform serving enterprises across banking, telecom, aviation and digital platforms. The company recently surpassed $15 million in annual recurring revenue, with over 60% of new revenue from international markets, particularly the United States. In early 2025, CloudSEK raised over $20 million in Series B funding from investors including Commvault and Connecticut Innovations.

PR Newswire
Mar 5th, 2026
Commvault and CloudSEK integrate to tackle dark web credential exposure amid AI-driven threats

Commvault has announced an integration with CloudSEK to help enterprises defend against identity-based cyberattacks fuelled by stolen credentials. Nearly 80% of breaches involve compromised credentials, with over 24 billion stolen credentials circulating on the dark web. The integration brings CloudSEK's real-time dark web credential intelligence into Commvault's Active Directory solutions. This enables customers to identify exposed accounts early and take action, including disabling compromised credentials and rolling back malicious changes before attackers can escalate privileges or deploy ransomware. The integration automatically scores and prioritises vulnerabilities across internal, public and dark web sources with clear remediation guidance. It will be available this summer at no charge for customers using Commvault's Active Directory solutions, with options to upgrade to CloudSEK's full suite.